Wednesday, March 20, 2019

About DFIR - Moar!


I’m overdue for an update, so here we go!  I came across some pretty cool stuff recently.  I know I’ve said this before, but it really is a fantastic time to be involved in DFIR!

Nick Caldwell won me over with the very first article of his I came across, and he hasn’t disappointed me since!  He’s such a solid force of wisdom: 


The Worst Career Advice I Ever Received

https://medium.com/@nickcaldwell/latest
@NickCald 

Unless you live in a cave, you probably already knew this, but Eric Zimmerman has a new tool out, looks amazing!  KAPE - Kroll Artifact Parser and Extractor 

https://learn.duffandphelps.com/kape 
@EricRZimmerman 

I came across this “Malware Dynamic Analysis” nugget by Veronica Kovah, one of so many great and FREE training resources available on OpenSecurityTraining.info: 

http://opensecuritytraining.info/MalwareDynamicAnalysis.html 
@VeronicaKovah 

Microsoft Security Intelligence puts out an annual Report, guess I knew that but forgot about it.  Really enjoyed this most recent one! 

Microsoft's Annual Security Intelligence Report

Podcasts worth mentioning: 


CISO-SecurityVendor Relationship Podcast with David Spark and Mike Johnson: 

https://cisoseries.com/podcast
@DSpark 
@YanceySlide 

Defense in Depth Podcast with David Spark and Allan Alford: 

https://cisoseries.com/podcast
@DSpark 
@AllanAlfordinTX 

Simple Leadership Podcast: 

@cmccarrick 
http://SimpleLeadership.io/category/podcast 

World Class Investigator Podcast: 

@HuntedJulie 
https://itunes.apple.com/ca/podcast/world-class-investigator/id1330196085 

Human Factor Security Podcast: 

@Jenny_Radcliffe 
https://humanfactorsecurity.co.uk/podcast-2

The OSINT Podcast: 

@JakeCreps 
http://osintpodcast.com

Hackable Podcast by McAfee: 

https://HackablePodcast.com

Inside Intercom Podcasts: 

https://radiopublic.com/inside-intercom-podcast-GmMPaG 

ATM Malware Tracker: (Caution Malware!)

@cybercrimewhq 
http://atm.cybercrime-tracker.net

13 Cubed DFIR Learning Series: 

@DavisRichardG 
https://www.youtube.com/user/davisrichardg

Fixed: https://aboutdfir.com/articles 

http://mc.fhstp.ac.at/sites/default/files/Anubis.pdf BAD URL, NEW URL: 
Now you can grab it here

Updated BelkaSoft, Carnegie Mellon, and eForensics training listings.